Issue metadata
Sign in to add a comment
|
Node #832:ObjectState in B3 is not dominated by input@2 #789:HeapConstant in src |
||||||||||||||||||||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=6267837035577344 Fuzzer: mbarbella_js_mutation Job Type: linux_asan_d8_v8_arm_dbg Platform Id: linux Crash Type: CHECK failure Crash Address: Crash State: Node #832:ObjectState in B3 is not dominated by input@2 #789:HeapConstant in src Regressed: V8: r34208:34209 Minimized Testcase (1.62 Kb): https://cluster-fuzz.appspot.com/download/AMIfv94f5IAU3Bmp644JXblxr32kd72Pvqgv6hTL13rI6sMscaBI8TfEzhzqXHP0c1YdG8v0qaT_c8fezAHfmg2akp4FqnNJerSrogDY_PQlPmrSFvFqK5ZLGTLqwAsEmnKALEfsTMrejisxXJz1pIVcYPx3kd3EgQ Filer: ishell See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
May 25 2016
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||||||||
Comment 1 by ishell@chromium.org
, May 23 2016Owner: mstarzinger@chromium.org
Status: Assigned (was: Available)